CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 199: 312-50V13: Certified Ethical Hacker v13

An ethical hacker is hired to evaluate the defenses of an organization's database system which is known to employ a signature-based IDS. The hacker knows that some SQL Injection evasion techniques may allow him to bypass the system's signatures. During the operation, he successfully retrieved a list of usernames from…

Nội dung câu hỏi

An ethical hacker is hired to evaluate the defenses of an organization's database system which is known to employ a signature-based IDS. The hacker knows that some SQL Injection evasion techniques may allow him to bypass the system's signatures. During the operation, he successfully retrieved a list of usernames from the database without triggering an alarm by employing an advanced evasion technique. Which of the following could he have used?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Utilizing the char encoding function to convert hexadecimal and decimal values into characters that pass-through SQL engine parsing — đáp án hiện tại
  2. B. Implementing sophisticated matches such as "OR john' = 'john'" in place of classical matches like "OR 1=1"
  3. C. Manipulating white spaces in SQL queries to bypass signature detection
  4. D. Using the URL encoding method to replace characters with their ASCII codes in hexadecimal form

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề